The client and server don't support a common SSL protocol version or cipher suite

The client and server don't support a common SSL protocol version or cipher suite

book

Article ID: CTX473951

calendar_today

Updated On:

Description

After updating the Server certificate binding to NetScaler SSL Virtual Server, customer is unable to access the SSL Virtual Server via Internet with below browser notification. While intranet access to it works fine.
“Unsupported protocol. The client and server don't support a common SSL protocol version or cipher suite”
"ERR_SSL_VERSION_OR_CIPHER_MISMATCH"


image.png

 

Resolution

  1. Renew server certificate on Firewall.
    • Issue should be resolved once certificate is renewed.

Problem Cause

There's a 3rd Party Firewall proxy all internet traffic between NetScaler and Internet client. The server certificate was not renewed on Firewall.